The purpose of DNS is to spread scams

Simon Willison's Blog News

Summary

Terence Eden cites an Interisle report indicating that 10–20% of newly registered gTLD domains in 2025 are fraudulent, with 8.5 million already blocklisted by May. The piece frames DNS as a major vector for cybercrime and notes ICANN's prolonged inaction on the issue.

No content available
Original Article
View Cached Full Text

Cached at: 09/06/26, 04:13 PM

# The purpose of DNS is to spread scams Source: [https://simonwillison.net/2026/Sep/6/the-purpose-of-dns-is-to-spread-scams/](https://simonwillison.net/2026/Sep/6/the-purpose-of-dns-is-to-spread-scams/) 6th September 2026 \- Link Blog **[The purpose of DNS is to spread scams](https://shkspr.mobi/blog/2026/09/the-purpose-of-dns-is-to-spread-scams/)**\. Terence Eden shares some daunting statistics in support of his take that "the Domain Name System's purpose seems to be a vector for criminals to run scams on people at a terrifyingly high rate"\. On[this Interisle report](https://interisle.net/insights/cybercriminaldomaindemand)\([via Andrew Campling](https://labs.ripe.net/author/andrew_campling/dns-abuse-and-criminal-infrastructure-beyond-definitions-and-blocklists/)\), Terence says: > It says 85 million new registrations of gTLDs were made in 2025\. Of those 8\.5 million were added to blocklists by May 2025\. It reckons that a 10% abuse rate is the likely floor for these numbers and it's probably closer to 20%\. One in five newly registered domains with a gTLD are scams\. That's a bloody crisis\. I had no idea\. Apparently ICANN have been discussing this problem for years\.

Similar Articles

The purpose of DNS is to spread scams

Lobsters Hottest

The article argues that the Domain Name System (DNS) is being exploited for scams, with statistics showing a high rate of malicious domain registrations, posing a major internet security crisis.

A rant about phishing: It's not the user's fault (and not DNS either)

Lobsters Hottest

The article critiques common phishing vulnerabilities by highlighting how fragmented authentication flows and poor URL practices make it difficult for users to distinguish legitimate sites from scams, advocating for consistent domain usage to improve security.

Ignore DNSSEC if you like MITM attacks

Lobsters Hottest

The article argues that ignoring DNSSEC exposes users to man-in-the-middle attacks, using examples from email, Matrix, and XMPP, and draws a parallel to the historical resistance against HTTPS.

.garden TLD's change to a bad neighborhood

Hacker News Top

The .garden top-level domain is being flagged as a problematic zone, likely due to spam or abuse issues, making it a 'bad neighborhood' in the internet ecosystem.